PT-2022-3986 · Cisco · Cisco Webex Meetings
Axel Flamcourt
·
Published
2022-08-03
·
Updated
2022-08-12
·
CVE-2022-20820
CVSS v2.0
5.5
Medium
| Vector | AV:N/AC:L/Au:S/C:P/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Cisco Webex Meetings (affected versions not specified)
Description
The issue exists due to insufficient protection of the web page structure in the web interface of Cisco Webex Meetings. This could allow a remote attacker to conduct a cross-site scripting (XSS) attack. Additionally, there is a risk of a frame hijacking attack against a user of the web interface.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Clickjacking
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Cisco Webex Meetings